Re: RPC Enumeration security finding

Tim McCarthy <[email protected]>
Newsgroups gmane.comp.hardware.netapp
Message-ID <CH2PR14MB391459258EC0B9FC2BCF37EEF3C60@CH2PR14MB3914.namprd14.prod.outlook.com>
I would say....

Yeah sure that would affect a MICROSOFT box. However this is A FALSE POSITIVE as the target of inquiry is a NetApp ONTAP box and the diagnosis clearly thinks it is Microsoft

Get Outlook for iOS<https://aka.ms/o0ukef>

________________________________
From: [email protected] on behalf of Alexander Griesser <[email protected]>
Sent: Wednesday, July 24, 2019 12:51 AM
To: Toasters
Subject: RPC Enumeration security finding

Hey there,

One of our customers had a pentester onsite who found the following issues with the NetApp filers there.

RPC Enumeration discovered
By sending a DUMP request to the portmapper, it is possible to enumerate the RPC services running on the remote port.  Using this information, an attacker can connect and bind to each service by sending an RPC request to the remote port and exploit the host.

Note: Specific Target IPs are included in the "Detailed IP List."
nGuard recommends downloading the latest security patches from Microsoft.

Does anyone know what exactly the problem here is and if there are any tunables to change the behaviour on NetApp (Ontap9+) filers?

Thanks,

Alexander Griesser
Head of Systems Operations

ANEXIA Internetdienstleistungs GmbH

E-Mail: [email protected]<mailto:[email protected]>
Web: http://www.anexia-it.com<http://www.anexia-it.com/>

Anschrift Hauptsitz Klagenfurt: Feldkirchnerstraße 140, 9020 Klagenfurt
Geschäftsführer: Alexander Windbichler
Firmenbuch: FN 289918a | Gerichtsstand: Klagenfurt | UID-Nummer: AT U63216601

_______________________________________________
Toasters mailing list
[email protected]
http://www.teaparty.net/mailman/listinfo/toasters
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.